Note: This question is part of a series of questions that present the same scenario. Each question in the series contains a unique solution that might meet the stated goals. Some question sets might have more than one correct solution, while others might not have a correct solution.
After you answer a question in this section, you will NOT be able to return to it. As a result, these questions will not appear in the review screen.
You deploy Azure Migrate to an on-premises network.
You have an on-premises physical server named Server1 that runs Windows Server and has the following configuration.
* Operating system disk 600 GB
* Data disic 3 TB
* NIC Teaming: Enabled
* Mobility service: installed
* Windows Firewall: Enabled
* Microsoft Defender Antivirus: Enabled
You need to ensure that you can use Azure Migrate to migrate Server1.
Solution: You disable Windows Defender Firewall on Server1.
Does this meet the goal?
Your company uses Storage Spaces Direct.
You need to view the available storage in a Storage Space Direct storage pool.
What should you use?
Hotspot Question
You have a Hyper-V failover cluster named Cluster1 that contains two nodes named Node1 and Node2, and a Hyper-V host named Host1.
You have the virtual machines shown in the following table.

The Balancer settings for Cluster1 are shown in the following exhibit.

For each of the following statements, select Yes if the statement is true. Otherwise, select No.
NOTE: Each correct selection is worth one point.


Explanation:
Box 1: Yes
In the exhibit we see the following two options being selected:
Enable Automatic Balancing of Virtual Machines
Load balance to a node when it joins.
Box 2: No
We see: Aggressiveness: Medium
Node2 is 60%, and is not more than 70% loaded.
Box 3: No
The CPU utilization on Node2 is below the threshold.
Reference:
https://learn.microsoft.com/en-us/azure/azure-local/manage/vm-load-balancing
https://techcommunity.microsoft.com/blog/failoverclustering/failover-cluster-vm-load-balancing-in-windows-server-2016/372084
Your network contains an Active Directory Domain Services (AD DS) forest that has a Windows Server 2008 R2 forest functional level. The forest contains the domains shown in the following table.

You need to perform an in-place upgrade of the domain controllers in east.contoso.com to Windows Server 2025. The solution must minimize administrative effort.
What should you do first?
Drag and Drop Question
You have an Azure subscription that contains an Azure key vault named Vault1.
You plan to deploy a virtual machine named VM1 that will run Windows Server.
You need to enable encryption at host for VM1. The solution must use customer-managed keys.
Which three actions should you perform in sequence? To answer, move the appropriate actions from the list of actions to the answer area and arrange them in the correct order.


Explanation:
https://learn.microsoft.com/en-us/azure/virtual-machines/disks-enable-host-based-encryption-portal?tabs=azure-powershell
You have an Azure virtual machine named VM1.
You install an application on VM1, and then restart the virtual machine.
After the restart, you get the following error message: "Boot failure. Reboot and Select proper Boot Device or Insert Boot Media in selected Boot Device." You need to mount the operating system disk offline from VM1 to a temporary virtual machine to troubleshoot the issue.
Which command should you run in Azure CLI?
Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com. The domain was built by using domain controllers that run Windows Server 2025.
You plan to deploy a custom app. The app will require a domain controller that runs a legacy version of Windows Server.
What is the oldest version of Windows Server that you can use for the domain controller in contoso.com?
You have an on-premises network and an Azure virtual network.
You establish a Site-to-Site VPN connection from the on-premises network to the Azure virtual network, but the connection frequently disconnects.
You need to debug the IPsec tunnel from Azure.
Which Azure VPN Gateway diagnostic log should you review?